dawarich 0.3.5 Helm chart
schichtelVerified publisherScored 7 Oct 2026
Self-hosted alternative to Google Location History
Version 0.3.5 todayapp version 1.14.5 0Artifact Hub
dawarich 0.3.5 deploys 1 container image: freikin/dawarich. Across them, 639 findings — 0 critical, 2 high. The highest contribution is GHSA-r5fr-rjxr-66jc in lodash.template 4.17.21, fixed in 4.18.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| freikin/ | 1.14.5 | 0282553 | 6,797 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-102422 | node-shell-quote | 1.7.4+~1.7.1-1+deb13u2 |
| Low | DEBIAN-CVE-2026-69184 | c-ares | no fix listed |
| Low | DEBIAN-CVE-2026-45736 | node-ws | no fix listed |
| Low | DEBIAN-CVE-2026-6322 | node-ajv | no fix listed |
| Low | DEBIAN-CVE-2025-1352 | elfutils | no fix listed |
| Low | GO-2025-4009 | stdlib | 1.24.8 |
| Low | DEBIAN-CVE-2025-1153 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-73088 | node-browserslist | no fix listed |
| Low | GHSA-73wf-gq98-2v4g | browserslist | 4.28.7 |
| Low | DEBIAN-CVE-2026-73089 | node-browserslist | no fix listed |
| Low | GHSA-c83g-rgw3-j3cx | browserslist | 4.28.7 |
| Low | DEBIAN-CVE-2026-54411 | pam | no fix listed |
| Low | DEBIAN-CVE-2022-4055 | xdg-utils | no fix listed |
| Low | GHSA-rgw5-rvv9-x895 | brace-expansion | 2.1.4 |
| Low | GO-2025-4006 | stdlib | 1.24.8 |
| Low | DEBIAN-CVE-2018-20673 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-59871 | node-tar | no fix listed |
| Low | DEBIAN-CVE-2026-59873 | node-tar | no fix listed |
| Low | DEBIAN-CVE-2026-59874 | node-tar | no fix listed |
| Low | GHSA-23hp-3jrh-7fpw | tar | 7.5.19 |
| Low | GHSA-8x88-c5mf-7j5w | tar | 7.5.18 |
| Low | DEBIAN-CVE-2026-14257 | node-brace-expansion | no fix listed |
| Low | GHSA-mh99-v99m-4gvg | brace-expansion | 2.1.3 |
| Low | DEBIAN-CVE-2026-48619 | nodejs | 20.19.2+dfsg-1+deb13u3 |
| Low | DEBIAN-CVE-2026-15308 | python3.13 | no fix listed |
| Low | DEBIAN-CVE-2026-74860 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2026-14741 | libhttp-date-perl | no fix listed |
| Low | DEBIAN-CVE-2026-82560 | perl | no fix listed |
| Low | GHSA-68fv-2mgg-jv7q | source-map-js | 1.2.2 |
| Low | DEBIAN-CVE-2026-93990 | expat | no fix listed |
| Low | DEBIAN-CVE-2026-24001 | node-diff | no fix listed |
| Low | DEBIAN-CVE-2026-6734 | node-undici | no fix listed |
| Low | GO-2026-4870 | stdlib | 1.25.9 |
| Low | GO-2026-4971 | stdlib | 1.25.10 |
| Low | GHSA-xjh9-v7x6-24jw | @fastify/ | 3.2.1 |
| Low | GO-2026-4947 | stdlib | 1.25.9 |
| Low | DEBIAN-CVE-2026-33750 | node-brace-expansion | no fix listed |
| Low | GHSA-6g55-p6wh-862q | postcss | 8.5.12 |
| Low | GHSA-j8xg-fqg3-53r7 | word-wrap | 1.2.4 |
| Low | GHSA-395f-4hp3-45gv | shell-quote | 1.9.0 |
| Low | DEBIAN-CVE-2026-27903 | node-minimatch | no fix listed |
| Low | GHSA-7r86-cg39-jmmj | minimatch | 9.0.7 |
| Low | DEBIAN-CVE-2021-31879 | wget | no fix listed |
| Low | GO-2026-5037 | stdlib | 1.25.11 |
| Low | DEBIAN-CVE-2026-67213 | node-postcss | no fix listed |
| Low | DEBIAN-CVE-2026-59869 | node-js-yaml | no fix listed |
| Low | GHSA-52cp-r559-cp3m | js-yaml | 4.3.0 |
| Low | DEBIAN-CVE-2026-34043 | node-serialize-javascript | no fix listed |
| Low | DEBIAN-CVE-2026-48937 | nodejs | 20.19.2+dfsg-1+deb13u3 |
| Low | DEBIAN-CVE-2026-6791 | glibc | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.3.5latest | today | 1.14.5 | 0282553 | 6,797 |
| 0.3.4 | 29 days ago | 1.14.4 | — | — |
| 0.3.3 | 30 days ago | 1.14.3 | — | — |
| 0.3.2 | 1 month ago | 1.14.2 | — | — |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.